🚨 ALERT: China-linked hackers are exploiting unpatched SharePoint servers to drop Warlock ransomware.

They’re using legit tools like PsExec, Mimikatz & IIS hijacking to stay hidden.

Even patching may not kick them out.

CheckDot is SAFU #dyor on CheckDot 🤝